CVE-2025-41067EPSS p35.2%
CVE-2025-41067CVE-2025-41067
open5gs / open5gs
Description
Reachable Assertion vulnerability in Open5GS up to version 2.7.6 allows attackers with connectivity to the NRF to cause a denial of service. An SBI request that deletes the NRF's own registry causes a check that ends up crashing the NRF process and renders the discovery service unavailable.
Scoring
| CVSS | 7.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
| EPSS | 0.43% probability of exploitation · percentile 35.2% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-08 |